Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ge###n.ce.ms':80
- ge###n.ce.ms/rtOctdiTWbQGvX2Ja153iKDNYefGTO/mDTpSddPcmxe1bmsTiqmbrQdtALciI/SrQkn5EwHBi5aQzaeFyZcFtZEbIRvuLgOlM0aAtXyJT66Puw==
- ge###n.ce.ms/dQzwmUmU87bILa5q+TOmkGP13a69ztau2wzS2KTgdcHcLs88NQfh+H1LrG/QkTLWEPKWuhfQaXZwAxj1j0MANL5QZDTYLMgYMNn0qbhvccjdTrKYvGq7FVIl+Z4LCGeenHxcYePCErq6Mg+fWLvwIBZg5T4YZBO9uDR7M89C+J3xkDqSxTGlV2YytnbpjyeMVegGHzyrp/c=
- DNS ASK ge###n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''